angularjs-injection

1 article
sort: new top best
clear filter
0 5/10

Security researcher disclosed multiple stored XSS vulnerabilities on Tokopedia's platform, including XSS in product complaint descriptions, shop location parameters, AngularJS template injection in product etalase names, and blind XSS in the Tokocash customer service system. All vulnerabilities were originally reported in 2018 and have since been marked as valid by Tokopedia.

Tokopedia AngularJS Salesforce XSSHunter apapedulimu
apapedulimu.click · devanshbatham/Awesome-Bugbounty-Writeups · 22 hours ago · details